Chamilo
Vendor:
First CVE: Jan 30, 2020 · Active for 6 years
33
Total CVEs
More Total CVEs than 96% of tracked products
8.3
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Chamilo over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 30, 2020
6 years ago
Most Recent CVE
Nov 28, 2023
969 days ago
CVE Severity & Scoring
Chamilo33 CVEs
52%
30%
15%
All CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network33 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low33 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None15 (45.5%)
Unknown0 (0.0%)
Required18 (54.5%)
Privileges Required
Low9 (27.3%)
High10 (30.3%)
None14 (42.4%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (33 CVEs).
33 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-34960CRITICAL A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to execute arbitrary commands via a SOAP API call with a crafted | Aug 1, 2023 | 9.8 | 92 | NO | YES |
CVE-2023-4220MEDIUM Unrestricted file upload in big file upload functionality in `/main/inc/lib/javascript/bigupload/inc/bigUpload.php` in Chamilo LMS <= v1.11.24 allows unauthenticated attackers to p | Nov 28, 2023 | 6.1 | 84 | NO | YES |
CVE-2023-3368CRITICAL Command injection in `/main/webservices/additional_webservices.php` in Chamilo LMS <= v1.11.20 allows unauthenticated attackers to obtain remote code execution via improper neutral | Nov 28, 2023 | 9.8 | 77 | NO | YES |
CVE-2021-34187CRITICAL main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter. | Jun 28, 2021 | 9.8 | 50 | NO | YES |
CVE-2021-31933HIGH A remote code execution vulnerability exists in Chamilo through 1.11.14 due to improper input sanitization of a parameter used for file uploads, and improper file-extension filteri | Apr 30, 2021 | 7.2 | 41 | NO | YES |
CVE-2022-40407HIGH A zip slip vulnerability in the file upload function of Chamilo v1.11 allows attackers to execute arbitrary code via a crafted Zip file. | Sep 29, 2022 | 8.8 | 29 | NO | NO |
CVE-2023-4226HIGH Unrestricted file upload in `/main/inc/ajax/work.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading | Nov 28, 2023 | 8.8 | 28 | NO | NO |
CVE-2023-4222HIGH Command injection in `main/lp/openoffice_text_document.class.php` in Chamilo LMS <= v1.11.24 allows users permitted to upload Learning Paths to obtain remote code execution via imp | Nov 28, 2023 | 8.8 | 28 | NO | NO |
CVE-2023-3533CRITICAL Path traversal in file upload functionality in `/main/webservices/additional_webservices.php` in Chamilo LMS <= v1.11.20 allows unauthenticated attackers to perform stored cross-si | Nov 28, 2023 | 9.8 | 28 | NO | NO |
CVE-2022-42029HIGH Chamilo 1.11.16 is affected by an authenticated local file inclusion vulnerability which allows authenticated users with access to 'big file uploads' to copy/move files from anywhe | Oct 17, 2022 | 8.8 | 28 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (33 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
6.1% of CVEs· 97th percentile
Nuclei
4 CVEs
12.1% of CVEs· 97th percentile
ExploitDB
2 CVEs
6.1% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (33 CVEs).
Media Mentions
Signals from CVEs in this product scope (33 CVEs).
Top CNAs Publishing CVEs For Chamilo
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.9.4 | 2 | 6.1 | 0.8% | 0 | 0 |
| 1.11.16 | 1 | 8.8 | 0.7% | 0 | 0 |
| 1.11.14 | 5 | 6.8 | 1.1% | 0 | 0 |
| 1.11 | 1 | 8.8 | 1.3% | 0 | 0 |